CWE-362: CWE-362

466
Total CVEs
6
Critical
254
High
6.4
Avg CVSS
1
In CISA KEV

Yearly Trend

2026
56
2025
214
2024
96
2023
25
2022
23

Top Affected Vendors

1 Linux 173
2 Microsoft 80
3 Google 40
4 Debian 32
5 Huawei 28
6 Apple 28
7 Fedoraproject 13
8 Netapp 11
9 Mozilla 9
10 Xen 8

All CWE-362 CVEs (466)

CVE-2024-27020
7.0

This CVE describes a race condition vulnerability in the Linux kernel's netfilter nf_tables subsystem. It allows concurrent access to the nf_tables_ex...

May 1, 2024
CVE-2024-33904
7.0

This CVE describes a race condition vulnerability in Hyprland's HookSystem.cpp that allows local attackers to execute arbitrary assembly code by writi...

Apr 29, 2024
CVE-2023-52586
7.0

This CVE describes a race condition vulnerability in the Linux kernel's DRM/MSM DPU driver where concurrent vblank interrupt enable/disable operations...

Mar 6, 2024
CVE-2023-52578
7.0

This CVE describes a data race condition in the Linux kernel's bridge networking module where multiple CPUs can concurrently update network device sta...

Mar 2, 2024
CVE-2023-52517
7.0

A race condition in the Linux kernel's SPI driver for Allwinner sun6i processors allows DMA transfers to corrupt data when receiving SPI communication...

Mar 2, 2024
CVE-2024-0041
7.0

This CVE describes a race condition vulnerability in Android's SystemStatusAnimationSchedulerImpl.kt that could allow local privilege escalation witho...

Feb 16, 2024
CVE-2023-6531
7.0

A use-after-free vulnerability in the Linux kernel's Unix domain socket garbage collector allows local attackers to potentially escalate privileges or...

Jan 21, 2024
CVE-2023-42832
7.0

A race condition vulnerability in macOS allows malicious applications to potentially gain root privileges. This affects macOS Big Sur, Monterey, and V...

Jan 10, 2024
CVE-2023-36405
7.0

This Windows kernel vulnerability allows an authenticated attacker to execute arbitrary code with elevated SYSTEM privileges. It affects Windows syste...

Nov 14, 2023
CVE-2023-38616
7.0

A race condition vulnerability in macOS allows malicious applications to execute arbitrary code with kernel privileges, potentially gaining full syste...

Sep 6, 2023
CVE-2023-35361
7.0

This Windows kernel vulnerability allows an authenticated attacker to execute arbitrary code with SYSTEM privileges, potentially taking full control o...

Jul 11, 2023
CVE-2023-35823
7.0

This CVE describes a use-after-free vulnerability in the Linux kernel's saa7134 media device driver. Attackers with local access can potentially explo...

Jun 18, 2023
CVE-2023-35826
7.0

A use-after-free vulnerability in the Linux kernel's cedrus video decoder driver allows local attackers to potentially escalate privileges or cause de...

Jun 18, 2023
CVE-2023-35828
7.0

A use-after-free vulnerability in the Renesas USB3 gadget driver in Linux kernel versions before 6.3.2 allows local attackers to potentially execute a...

Jun 18, 2023
CVE-2023-21101
7.0

This CVE describes a use-after-free vulnerability in Android's Widevine DRM plugin caused by a race condition. It allows local privilege escalation wi...

Jun 15, 2023
CVE-2023-2006
7.0

This CVE describes a race condition vulnerability in the Linux kernel's RxRPC network protocol, where improper locking during bundle processing could ...

Apr 24, 2023
CVE-2023-26980
7.0

CVE-2023-26980 is a race condition vulnerability in PAX Technology A920 Pro payment terminals running PayDroid 8.1. It could allow attackers to bypass...

Apr 14, 2023
CVE-2023-28144
7.0

This vulnerability allows local attackers to escalate privileges through race conditions in KDAB Hotspot's performance privilege elevation script. It ...

Mar 14, 2023
CVE-2020-19824
7.0

This vulnerability in MPV media player allows attackers to execute arbitrary code and crash the program via the ao_c parameter. It affects users runni...

Feb 17, 2023
CVE-2022-33915
7.0

CVE-2022-33915 is a local privilege escalation vulnerability in Amazon AWS Apache Log4j hotpatch packages. It affects systems using AWS hotpatch versi...

Jun 17, 2022
CVE-2022-20155
7.0

This CVE describes a use-after-free vulnerability in the Android kernel's IPU core JQS message transport driver, caused by a race condition in the ipu...

Jun 15, 2022
CVE-2022-20118
7.0

This CVE describes a use-after-free vulnerability in Android's ION memory management subsystem due to a race condition in ion_ioctl and related functi...

May 10, 2022
CVE-2022-20006
7.0

This vulnerability allows a local attacker to briefly view content under the lockscreen due to a race condition in Android's keyguard service. It affe...

May 10, 2022
CVE-2022-29582
7.0

CVE-2022-29582 is a use-after-free vulnerability in the Linux kernel's io_uring subsystem caused by a race condition in timeout handling. This allows ...

Apr 22, 2022
CVE-2022-26827
7.0

This vulnerability allows an authenticated attacker to elevate privileges on Windows systems by exploiting a race condition in the File Server Resourc...

Apr 15, 2022
CVE-2022-26807
7.0

CVE-2022-26807 is a Windows Work Folder Service elevation of privilege vulnerability that allows authenticated attackers to execute arbitrary code wit...

Apr 15, 2022
CVE-2022-28796
7.0

CVE-2022-28796 is a use-after-free vulnerability in the Linux kernel's jbd2 journaling subsystem caused by a transaction_t race condition. This allows...

Apr 8, 2022
CVE-2022-26357
7.0

This CVE describes a race condition vulnerability in Xen's VT-d (Virtualization Technology for Directed I/O) domain ID cleanup mechanism. It allows at...

Apr 5, 2022
CVE-2022-23036
7.0

Multiple race condition vulnerabilities in Linux PV device frontends allow malicious Xen backends to maintain unauthorized access to guest memory page...

Mar 10, 2022
CVE-2022-23038
7.0

This CVE (CVE-2022-23038) is part of a series of vulnerabilities affecting Linux PV device frontends in Xen virtualization. It allows malicious or com...

Mar 10, 2022
CVE-2022-23040
7.0

Multiple race condition vulnerabilities in Linux PV device frontends allow malicious Xen backends to maintain unauthorized access to guest memory page...

Mar 10, 2022
CVE-2022-23042
7.0

CVE-2022-23042 is a race condition vulnerability in Linux Xen PV netfront driver where a malicious backend can trigger a BUG_ON() assertion failure, c...

Mar 10, 2022
CVE-2022-24525
7.0

This vulnerability allows an authenticated attacker to execute arbitrary code with SYSTEM privileges by exploiting a race condition in the Windows Upd...

Mar 9, 2022
CVE-2022-24505
7.0

CVE-2022-24505 is a Windows ALPC (Advanced Local Procedure Call) elevation of privilege vulnerability that allows authenticated attackers to gain SYST...

Mar 9, 2022
CVE-2021-3640
7.0

This CVE describes a use-after-free vulnerability in the Linux kernel's Bluetooth HCI subsystem. A privileged local attacker can trigger a race condit...

Mar 3, 2022
CVE-2021-3609
7.0

CVE-2021-3609 is a race condition vulnerability in the Linux kernel's CAN BCM networking protocol that allows local attackers to corrupt memory and po...

Mar 3, 2022
CVE-2021-39629
7.0

This CVE describes a use-after-free vulnerability in Android's NFC stack due to a race condition between initialization and cleanup functions. It allo...

Jan 14, 2022
CVE-2021-44733
7.0

This CVE describes a use-after-free vulnerability in the TEE subsystem of the Linux kernel caused by a race condition in tee_shm_get_from_id. Attacker...

Dec 22, 2021
CVE-2021-0955
7.0

This CVE describes a race condition vulnerability in Android's FuseDaemon that could allow local privilege escalation. An attacker could exploit memor...

Dec 15, 2021
CVE-2020-12951
7.0

A race condition vulnerability in AMD's ASP firmware allows less privileged x86 code to perform System Management Mode operations. This affects AMD pr...

Nov 16, 2021
CVE-2021-0688
7.0

CVE-2021-0688 is a lock screen bypass vulnerability in Android's PhoneWindowManager due to a race condition. It allows local attackers to bypass the l...

Oct 6, 2021
CVE-2021-30652
7.0

This CVE describes a race condition vulnerability in Apple operating systems that allows malicious applications to gain root privileges. It affects ma...

Sep 8, 2021
CVE-2021-30786
7.0

A race condition vulnerability in Apple's PDF handling allows malicious PDF files to cause application crashes or execute arbitrary code. This affects...

Sep 8, 2021
CVE-2021-40490
7.0

A race condition vulnerability in the ext4 filesystem's inline data handling in Linux kernel versions up to 5.13.13 allows local attackers to corrupt ...

Sep 3, 2021
CVE-2021-30995
7.0

This CVE describes a race condition vulnerability in Apple operating systems that allows malicious applications to elevate privileges. It affects macO...

Aug 24, 2021
CVE-2021-31004
7.0

This CVE describes a race condition vulnerability in macOS that could allow an application to gain elevated privileges. It affects macOS Big Sur and e...

Aug 24, 2021
CVE-2021-30955
7.0

This CVE describes a race condition vulnerability in Apple operating systems that allows malicious applications to execute arbitrary code with kernel ...

Aug 24, 2021
CVE-2021-30933
7.0

This macOS kernel vulnerability allows malicious applications to exploit a race condition to execute arbitrary code with kernel privileges. It affects...

Aug 24, 2021
CVE-2021-30899
7.0

This CVE describes a race condition vulnerability in macOS that allows a malicious application to execute arbitrary code with kernel privileges. It af...

Aug 24, 2021
CVE-2021-30868
7.0

CVE-2021-30868 is a macOS kernel race condition vulnerability that allows malicious applications to execute arbitrary code with kernel privileges. Thi...

Aug 24, 2021

About CWE-362 (CWE-362)

Our database tracks 466 CVEs classified as CWE-362, with 6 rated critical and 254 rated high severity. The average CVSS score for CWE-362 vulnerabilities is 6.4.

External reference: View CWE-362 on MITRE CWE →

Monitor CWE-362 Vulnerabilities

Get alerted when new CWE-362 CVEs affect your infrastructure.

Start Monitoring Free